On Thu, 4 Sep 2014 22:34:22 +0200 Kurt Roeckx <k...@roeckx.be> wrote:
> On Thu, Sep 04, 2014 at 04:21:42PM -0400, Scott Kitterman wrote:
> > On Thursday, September 04, 2014 18:48:18 Kurt Roeckx wrote:
> > > Package: opendmarc
> > > Version: 1.2.0+dfsg-1
> > > Seveirty: grave
> > > Tags: security
> > > 
> > > Hi,
> > > 
> > > My opendmarc started segfaulting 2 days ago:
> > > [7521900.795653] opendmarc[5088]: segfault at 8 ip 0000000000407a3e sp
> > > 00007fdaf3c05ec0 error 4 in opendmarc[400000+10000] [7698055.733671]
> > > opendmarc[9544]: segfault at 8 ip 0000000000407a3e sp 00007f9a788e7ec0
> > > error 4 in opendmarc[400000+10000] [7715127.659016] opendmarc[9312]:
> > > segfault at 8 ip 0000000000407a3e sp 00007fdd650bdec0 error 4 in
> > > opendmarc[400000+10000]
> > > 
> > > At that point all mails start to give a: "451 4.7.1 Service unavailable 
-
> > > try again later", and so this is a remote DoS.
> > > 
> > > Trying to search for more information about this, I found:
> > > http://sourceforge.net/p/opendmarc/tickets/72/
> > > 
> > > That says it's fixed in 1.2.1, so the version from jessie/sid
> > > shouldn't.  So uploading this to backports might fix it.
> > 
> > Uploaded.  Please let me know how it goes.
> 
> I've disabled opendmarc now because half an hour after restarting
> it it crashed again.  If it was a certain e-mail, I might have
> received it now and it might stop crashing now.

1.3.0 is through New (soname bump) and built on common archs.  I'd appreciate 
it if you could try it again.  I realize it not crashing doesn't guarantee the 
problem is solved, but it would it an indicator.

Scott K

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply via email to